Click here to download all references as Bib-File.•
| 2022-05-17
⋅
Palo Alto Networks Unit 42
⋅
Emotet Summary: November 2021 Through January 2022 Emotet |
| 2022-05-12
⋅
Palo Alto Networks Unit 42
⋅
Harmful Help: Analyzing a Malicious Compiled HTML Help File Delivering Agent Tesla Agent Tesla |
| 2022-05-06
⋅
Palo Alto Networks Unit 42
⋅
Cobalt Strike Analysis and Tutorial: CS Metadata Encoding and Decoding Cobalt Strike |
| 2022-04-25
⋅
paloalto Networks Unit 42
⋅
Defeating BazarLoader Anti-Analysis Techniques BazarBackdoor |
| 2022-04-08
⋅
Palo Alto Networks Unit 42
⋅
New SolarMarker (Jupyter) Campaign Demonstrates the Malware’s Changing Attack Patterns solarmarker |
| 2022-03-31
⋅
Palo Alto Networks Unit 42
⋅
CVE-2022-22965: Spring Core Remote Code Execution Vulnerability Exploited In the Wild (SpringShell) |
| 2022-03-24
⋅
Palo Alto Networks Unit 42
⋅
Ransomware Threat Report 2022 |
| 2022-02-25
⋅
paloalto Networks Unit 42
⋅
Spear Phishing Attacks Target Organizations in Ukraine, Payloads Include the Document Stealer OutSteel and the Downloader SaintBot Saint Bot |
| 2022-02-24
⋅
paloalto Networks Unit 42
⋅
SockDetour – a Silent, Fileless, Socketless Backdoor – Targets U.S. Defense Contractors TiltedTemple |
| 2022-02-22
⋅
Palo Alto Networks Unit 42
⋅
Russia-Ukraine Crisis: How to Protect Against the Cyber Impact HermeticWiper |
| 2022-02-15
⋅
Palo Alto Networks Unit 42
⋅
New Emotet Infection Method Emotet |
| 2022-02-03
⋅
Palo Alto Networks Unit 42
⋅
Russia’s Gamaredon aka Primitive Bear APT Group Actively Targeting Ukraine (Updated June 22) Pteranodon Gamaredon Group |
| 2022-02-03
⋅
Palo Alto Networks Unit 42
⋅
Russia’s Gamaredon aka Primitive Bear APT Group Actively Targeting Ukraine Pteranodon Gamaredon Group |
| 2022-01-27
⋅
Palo Alto Networks Unit 42
⋅
Threat Assessment: BlackCat Ransomware BlackCat |
| 2022-01-25
⋅
Palo Alto Networks Unit 42
⋅
Weaponization of Excel Add-Ins Part 1: Malicious XLL Files and Agent Tesla Case Studies Agent Tesla |
| 2022-01-20
⋅
Palo Alto Networks Unit 42
⋅
Threat Brief: Ongoing Russia and Ukraine Cyber Conflict WhisperGate |
| 2021-12-29
⋅
Palo Alto Networks Unit 42
⋅
Strategically Aged Domain Detection: Capture APT Attacks With DNS Traffic Trends Chrysaor SUNBURST |
| 2021-12-02
⋅
Palo Alto Networks Unit 42
⋅
APT Expands Attack on ManageEngine With Active Campaign Against ServiceDesk Plus Godzilla Webshell |
| 2021-11-17
⋅
Twitter (@Unit42_Intel)
⋅
Tweet on Matanbuchus Loader used to deliver Qakbot (tag obama128b) and follow-up CobaltStrike Cobalt Strike QakBot |
| 2021-11-07
⋅
Palo Alto Networks Unit 42
⋅
Targeted Attack Campaign Against ManageEngine ADSelfService Plus Delivers Godzilla Webshells, NGLite Trojan and KdcSponge Stealer Godzilla Webshell NGLite |